[Forgot Password]
Login  Register Subscribe

30481

 
 

423868

 
 

256040

 
 

909

 
 

199103

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

DSA-5234-1 fish -- fish

ID: oval:org.secpod.oval:def:610163Date: (C)2022-09-26   (M)2023-10-05
Class: PATCHFamily: unix




An arbitrary code execution vulnerability was disovered in fish, a command line shell. When using the default configuraton of fish, changing to a directory automatically ran `git` commands in order to display information about the current repository in the prompt. Such repositories can contain per-repository configuration that change the behavior of git, including running arbitrary commands.

Platform:
Debian 11.x
Product:
fish
Reference:
DSA-5234-1
CVE-2022-20001
CVE    1
CVE-2022-20001
CPE    2
cpe:/a:fishshell:fish
cpe:/o:debian:debian_linux:11.x

© SecPod Technologies